CVE-1999-1093
- EPSS 6.27%
- Veröffentlicht 31.12.1999 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Buffer overflow in the Window.External function in the JScript Scripting Engine in Internet Explorer 4.01 SP1 and earlier allows remote attackers to execute arbitrary commands via a malicious web page.
CVE-1999-1094
- EPSS 6.93%
- Veröffentlicht 31.12.1999 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Buffer overflow in Internet Explorer 4.01 and earlier allows remote attackers to execute arbitrary commands via a long URL with the "mk:" protocol, aka the "MK Overrun security issue."
- EPSS 17.72%
- Veröffentlicht 31.12.1999 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Internet Explorer 4.0 allows remote attackers to read arbitrary text and HTML files on the user's machine via a small IFRAME that uses Dynamic HTML (DHTML) to send the data to the attacker, aka the Freiburg text-viewing issue.
- EPSS 16.14%
- Veröffentlicht 31.12.1999 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
When a Web site redirects the browser to another site, Internet Explorer 3.02 and 4.0 automatically resends authentication information to the second site, aka the "Page Redirect Issue."
CVE-2000-0028
- EPSS 21.84%
- Veröffentlicht 23.12.1999 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Internet Explorer 5.0 and 5.01 allows remote attackers to bypass the cross frame security policy and read files via the external.NavigateAndFind function.
CVE-1999-0981
- EPSS 3.28%
- Veröffentlicht 08.12.1999 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Internet Explorer 5.01 and earlier allows a remote attacker to create a reference to a client window and use a server-side redirect to access local files via that window, aka "Server-side Page Reference Redirect."
- EPSS 11.91%
- Veröffentlicht 02.12.1999 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Internet Explorer 5 allows a remote attacker to modify the IE client's proxy configuration via a malicious Web Proxy Auto-Discovery (WPAD) server.
CVE-1999-0793
- EPSS 21.09%
- Veröffentlicht 17.11.1999 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Internet Explorer allows remote attackers to read files by redirecting data to a Javascript applet.
- EPSS 21.5%
- Veröffentlicht 14.11.1999 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Windows Media Player ActiveX object as used in Internet Explorer 5.0 returns a specific error code when a file does not exist, which allows remote malicious web sites to determine the existence of files on the client.
CVE-2000-0329
- EPSS 8.05%
- Veröffentlicht 11.11.1999 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
A Microsoft ActiveX control allows a remote attacker to execute a malicious cabinet file via an attachment and an embedded script in an HTML mail, aka the "Active Setup Control" vulnerability.